Pith. sign in

Paper Citation Record · LEDGER

Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

As of 13 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 10 inbound Pith citation observations for arXiv:2002.01139.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2002.01139 v2

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 10 of 10 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-13T06:32:02.005865+00:00

measured 10 of 10 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-12T11:26:16.929297Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-05-20T09:03:10.607255Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation cf1294ad-a3bc-4314-b819-d1e829d302e4 · inbound

Hidden Data Privacy Breaches in Federated Learning cites this paper.

Hidden Data Privacy Breaches in Federated Learning Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 13

Resolution
unresolved
no resolver link, observed 2026-08-12T11:26:16.929297Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-12T11:26:16.929297Z digest=sha256:f2fb86b140ecb942337d361074ba80310904a9f6dda0feecb6895405a0d7900d

Observation 473639e0-6caa-44c5-8ded-8f79251d6367 · inbound

A Machine Learning-Based Approach For Detecting Malicious PyPI Packages cites this paper.

A Machine Learning-Based Approach For Detecting Malicious PyPI Packages Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 21

Resolution
unresolved
no resolver link, observed 2026-08-11T20:54:13.458679Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-11T20:54:13.458679Z digest=sha256:b7f99974fbbf6c633c4391bb25187e01c3b82913da7a30ca4a1f80fa9a38a736

Observation 6240d4cf-84af-4617-94e7-d08fbd221131 · inbound

Open Source, Open Threats? Investigating Security Challenges in Open-Source Software cites this paper.

Open Source, Open Threats? Investigating Security Challenges in Open-Source Software Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 22

Resolution
unresolved
no resolver link, observed 2026-08-07T00:41:17.469971Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T00:41:17.469971Z digest=sha256:6ced055f806e3d03f048ae6459e563bc5432230d25cd97827705d060b10dfe2a

Observation 1b2bfdcc-8eed-4b13-9bc3-b650609968de · inbound

Threadbox: Sandboxing for Modular Security cites this paper.

Threadbox: Sandboxing for Modular Security Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 4

Resolution
unresolved
no resolver link, observed 2026-08-06T21:38:27.173057Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T21:38:27.173057Z digest=sha256:bbbffac82fa38eb5139960898e56b2c8b49d7be73b0d12993264b446c8a24711

Observation 9e7600a9-f38f-4298-8196-22b93cf3a4a5 · inbound

An Empirical Study of Vulnerable Package Dependencies in LLM Repositories cites this paper.

An Empirical Study of Vulnerable Package Dependencies in LLM Repositories Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 28

Resolution
unresolved
no resolver link, observed 2026-08-05T14:22:34.921518Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T14:22:34.921518Z digest=sha256:253f7cba165a267f382188a092f2db22a7ed562c148d746dd67d6af8f394b622

Observation faec0607-c503-46f8-9a12-9ef74dcf28a8 · inbound

ORCA: Unveiling Obscure Containers In The Wild cites this paper.

ORCA: Unveiling Obscure Containers In The Wild Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 13

Resolution
unresolved
no resolver link, observed 2026-08-04T19:20:55.580945Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T19:20:55.580945Z digest=sha256:c89448189ccf853fc88d5f688da7cc7d9e5f62c785cb0e06edfc08b3ec5064dc

Observation 1ce4ac46-62c8-46b7-bad6-12a9bb5fe6e5 · inbound

A First Look at the Security Issues in the Model Context Protocol Ecosystem cites this paper.

A First Look at the Security Issues in the Model Context Protocol Ecosystem Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 9

Resolution
verified exact
arxiv_id, observed 2026-05-18T06:12:26.314028Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-05-18T06:10:58.928119Z digest=sha256:2276334328ffeb6ed27edeac3822bc1f8ee712db2f99946b17d843aa70630d3a

Observation 9287908d-20d1-45e9-9aa8-fce9c6b359d8 · inbound

Do Skill Descriptions Tell the Truth? Detecting Undisclosed Security Behaviors in Code-Backed LLM Skills cites this paper.

Do Skill Descriptions Tell the Truth? Detecting Undisclosed Security Behaviors in Code-Backed LLM Skills Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 13

Resolution
verified exact
arxiv_id, observed 2026-05-14T19:07:51.255301Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-05-14T19:06:00.332789Z digest=sha256:3f05bd6a181af02ae3c8c98f01191900277293b4c5cac104892c11a2668364ad

Observation 31f74490-5056-47d0-ba18-6220a5a86f87 · inbound

Overeager Coding Agents: Measuring Out-of-Scope Actions on Benign Tasks cites this paper.

Overeager Coding Agents: Measuring Out-of-Scope Actions on Benign Tasks Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 5

Resolution
verified exact
arxiv_id, observed 2026-05-20T09:03:10.609406Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-05-20T08:59:54.715974Z digest=sha256:07e6e67f7ed25a68b181c0ecfcd553b745e403d21ff066bb70d30caef4b00623

Observation 63ecb9f2-f751-4b89-80c2-6201fa77750e · inbound

LLM-Enhanced Hierarchical Heterogeneous Graph Representation Learning for Malicious Python Package Detection cites this paper.

LLM-Enhanced Hierarchical Heterogeneous Graph Representation Learning for Malicious Python Package Detection Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 12

Resolution
unresolved
no resolver link, observed 2026-07-12T03:06:24.801039Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-12T03:06:24.801039Z digest=sha256:114e8c5aeb2d9aca5c12959e150971dd0f79fd3b9bc308b53ebe0b1a4f8e9eff